loader image
Instantel Devices Exposed to Hack Risk, Researcher Says

More than 1,000 industrial monitoring devices manufactured by Instantel may be vulnerable to cyberattacks following the discovery of a critical command execution flaw in the company’s Micromate units. The flaw, identified by a researcher, could allow an attacker to gain unauthorized control of the devices, potentially disrupting their operation or accessing sensitive environmental data. The […]

Google Says Hackers Pose as IT to Breach Firms

Hackers are increasingly using fake IT support calls as a tactic to infiltrate corporate systems, according to a warning from Google. The attackers impersonate legitimate helpdesk personnel, contacting employees to manipulate them into granting access to sensitive internal resources. These social engineering schemes are designed to bypass security measures by exploiting human trust rather than […]

Infoblox NetMRI Bugs Expose Systems to Remote Attacks

Infoblox NetMRI, a network automation and management platform, has been found to contain multiple critical security vulnerabilities, according to a post shared on the r/netsec forum. The flaws include remote code execution (RCE), authentication bypass, SQL injection (SQLi), and arbitrary file read vulnerabilities. These issues are identified by several CVEs, though specific identifiers were not […]

SinoTrack GPS Flaws Let Hackers Control Vehicles Remotely

SinoTrack GPS tracking devices contain two security vulnerabilities that could allow unauthorized remote access to vehicles, according to a recent disclosure. The flaws affect the web management interface used to control the devices, exposing them to potential exploitation via default or weak passwords. If successfully exploited, the vulnerabilities could grant attackers access to device profiles, […]

Windows 10 Update Fixes Start Menu, Printer Bugs

Microsoft rolled out the June 2025 non-security preview update for Windows 10 version 22H2, introducing 13 fixes and improvements. This Windows 10 update fixes several issues, including a Start Menu bug that blocked users from launching the interface. The update, labeled KB5061087, also addresses problems affecting USB multi-function printers, where scanning features failed to operate […]

OneClik Malware Hits Energy Sector, Trellix Says

Cybersecurity firm Trellix has uncovered a sophisticated campaign using the OneClik malware, which targets organizations in the energy, oil and gas sectors. The campaign exploits Microsoft’s ClickOnce deployment technology to deliver malicious payloads and evade traditional detection methods. OneClik malware hits energy firms by embedding itself in cloud-hosted environments, enabling attackers to bypass endpoint defenses […]

Google Fixes Chrome Zero-Day Exploited in Attacks

Google fixed a critical zero-day vulnerability in its Chrome browser after confirming active exploitation in the wild. The flaw, identified as CVE-2025-6554, affects the browser’s V8 JavaScript and WebAssembly engine. In this latest update, Google fixes Chrome zero-day exposure by correcting a type confusion issue that could allow remote attackers to execute arbitrary code. The […]

Langflow RCE Flaw Rated 9.8 Joins CISA Risk List

A critical vulnerability affecting Langflow, a popular low-code platform for developing agentic AI workflows, has been added to the U.S. Cybersecurity and Infrastructure Security Agency’s (CISA) Known Exploited Vulnerabilities (KEV) Catalog. The flaw, identified as a remote code execution (RCE) bug with a CVSS severity score of 9.8, poses a significant threat to systems utilizing […]

Microsoft Unveils AI Agents to Control Windows Settings

Microsoft on Thursday introduced new artificial intelligence agents designed to streamline user interaction with Windows settings, as part of its latest Copilot+ PC experience rollout. The tools aim to simplify the process of configuring and customizing Windows devices by allowing AI to make system adjustments on behalf of users. The announcement highlights Microsoft’s continued investment […]

Agenda Hackers Add NETXLOADER, SmokeLoader to Attacks

The Agenda ransomware group has enhanced its cyberattack toolkit by integrating two new components: the well-known SmokeLoader malware and a .NET-based loader dubbed NETXLOADER, according to research from Trend Micro. First spotted in campaigns launched in November 2024, the updated attack chain offers increased stealth and complexity, allowing the group to bypass detection mechanisms more […]

Anonymous Hacks US Deportation Airline GlobalX Data

Hackers affiliated with the Anonymous collective have allegedly breached systems belonging to Global Crossing Airlines (GlobalX), a U.S.-based charter airline contracted for deportation flights. According to reports, the attackers claim to have stolen sensitive flight data, including logs and operational details linked to the airline’s services for U.S. immigration authorities. The cyber intrusion appears to […]

EU Launches Database to Track Cybersecurity Flaws

The European Union on Tuesday unveiled a centralized vulnerability database aimed at strengthening cybersecurity across the bloc. The platform will serve as an aggregated repository of information related to security flaws found in a wide range of digital products and services. By consolidating data on software and hardware vulnerabilities, the EU seeks to improve transparency […]